|
295031
|
- |
|
renren
|
renren_talk
|
Heap-based buffer overflow in RenRen Talk 2.9 allows remote attackers to execute arbitrary code via a crafted image in a chat message, as demonstrated using a PNG file.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2012-0916
|
2024-11-21 10:35 |
2012-01-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295032
|
- |
|
renren
|
renren_talk
|
Integer signedness error in RenRen Talk 2.9 allows remote attackers to execute arbitrary code via crafted dimensions of a skin file, leading to a heap-based buffer overflow, as demonstrated using a B…
|
CWE-189
Numeric Errors
|
CVE-2012-0915
|
2024-11-21 10:35 |
2012-01-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295033
|
- |
|
earl_miles
|
panels
|
Cross-site scripting (XSS) vulnerability in display_renderers/panels_renderer_editor.class.php in the admin view in the Panels module 6.x-2.x before 6.x-3.10 and 7.x-3.x before 7.x-3.0 for Drupal all…
|
CWE-79
Cross-site Scripting
|
CVE-2012-0914
|
2024-11-21 10:35 |
2012-01-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295034
|
- |
|
icloudcenter
|
ictimeattendance
|
SQL injection vulnerability in checklogin.aspx in ICloudCenter ICTimeAttendance 1.0 allows remote attackers to execute arbitrary SQL commands via the passw parameter. NOTE: Some of these details are…
|
CWE-89
SQL Injection
|
CVE-2012-0913
|
2024-11-21 10:35 |
2012-01-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295035
|
- |
|
horde
|
groupware_webmail_edition
|
Cross-site scripting (XSS) vulnerability in Horde_Form in Horde Groupware Webmail Edition before 4.0.6 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, related …
|
CWE-79
Cross-site Scripting
|
CVE-2012-0909
|
2024-11-21 10:35 |
2012-01-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295036
|
- |
|
simplesamlphp
|
simplesamlphp
|
Cross-site scripting (XSS) vulnerability in logout.php in SimpleSAMLphp 1.8.1 and possibly other versions before 1.8.2 allows remote attackers to inject arbitrary web script or HTML via the link_href…
|
CWE-79
Cross-site Scripting
|
CVE-2012-0908
|
2024-11-21 10:35 |
2012-01-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295037
|
- |
|
horde
|
imp dynamic_imp groupware_webmail_edition
|
Multiple cross-site scripting (XSS) vulnerabilities in Horde IMP before 5.0.18 and Horde Groupware Webmail Edition before 4.0.6 allow remote attackers to inject arbitrary web script or HTML via the (…
|
CWE-79
Cross-site Scripting
|
CVE-2012-0791
|
2024-11-21 10:35 |
2012-01-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295038
|
- |
|
oetiker
|
smokeping
|
Cross-site scripting (XSS) vulnerability in smokeping_cgi in Smokeping 2.4.2, 2.6.6, and other versions before 2.6.7 allows remote attackers to inject arbitrary web script or HTML via the displaymode…
|
CWE-79
Cross-site Scripting
|
CVE-2012-0790
|
2024-11-21 10:35 |
2012-01-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295039
|
- |
|
stone-ware
|
webnetwork
|
SQL injection vulnerability in Stoneware webNetwork before 6.0.8.0 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.
|
CWE-89
SQL Injection
|
CVE-2012-0912
|
2024-11-21 10:35 |
2012-01-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295040
|
- |
|
neoaxis
|
neoaxis_web_player
|
Directory traversal vulnerability in the web player in NeoAxis NeoAxis web player 1.4 and earlier allows user-assisted remote attackers to write arbitrary files via a .. (dot dot) in a filename in th…
|
CWE-22
Path Traversal
|
CVE-2012-0907
|
2024-11-21 10:35 |
2012-01-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|